pm-gap-analysis

Pass

Audited by Gen Agent Trust Hub on Jul 19, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill ingests user-provided data for analysis. While no malicious patterns are present, the skill processes untrusted input without explicit sanitization or boundary markers.
  • Ingestion points: User inputs for framework activity assessments in SKILL.md.
  • Boundary markers: Absent.
  • Capability inventory: Bash, Write, Edit, and Read tools in SKILL.md.
  • Sanitization: Absent.
  • [COMMAND_EXECUTION]: Utilizes the Bash tool to facilitate document conversion tasks (e.g., Markdown to .docx) as part of its core reporting functionality.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 19, 2026, 05:16 PM
Security Audit — agent-trust-hub — pm-gap-analysis